What’s your current process for generating SBOMs?
Director of IT in Consumer Goods, 5,001 - 10,000 employees
generate an SBOM for every new release of a component. This SBOM can be generated on the source code, at build-time, at runtime, on the binary, or on a container image.IT Director in Education, 5,001 - 10,000 employees
We are still establishing a formal process for generating and recording our software bill of materials (SBOMs). This is relatively new since it has only been less than 2 years ago that the executive order was signed by the federal government. More to report in the future as we mature in our SBOMs posture.Senior Director IT Architecture in Finance (non-banking), 5,001 - 10,000 employees
We build them during the CI process and record them on the GRC and CMDB, then in the artifactory location, that helps us keep track and identify drifting.PMO – Engineering in Software, 5,001 - 10,000 employees
Get a real-time inventory of all software components; discover affected software; review vulnerability findings; plan corrective actions.SVP & Director, IT Operations in Finance (non-banking), 1,001 - 5,000 employees
we have yet to finalize a process, interested to hear and see what others doManager in Services (non-Government), 10,001+ employees
As Generating an software bill of materials (SBOM) typically involves using specialized tools or software to scan the codebase of the software and identify its components and dependencies, we are still establishing a formal process for recording and generating our SBOMs. As the information can then be compiled into a detailed list or inventory, which are critical to us for various purposes, such as security analysis, compliance, and supply chain management, generating an SBOM for every new release of a component is our ultimate goal.
Content you might like
Yes77%
No20%
Other (share below!)4%
197 PARTICIPANTS
CTO in Software, 201 - 500 employees
Without a doubt - Technical Debt! It's a ball and chain that creates an ever increasing drag on any organization, stifles innovation, and prevents transformation.ISSO and Director of the IRU in Healthcare and Biotech, 10,001+ employees
I would definitely suggest this based of how you categorize your types of data/systems and information being stored in certain parts of your data center. I think it’s really dependent on the size of your organization and ...read moreDirector Global Network / Security Architecture and Automation in Finance (non-banking), 10,001+ employees
Nothing ever dies in Enterprise. Why did Broadcom Software buy Symantec and VMWare, why did SDX Central post a story today about MPLS and how it lives on. Why is the hot news about cloud repatriation becuase a terrible app ...read more